CVE-2026-30861 | Tencent WeKnora 0.1.0/0.2.5 MCP Stdio Configuration command injection
A vulnerability classified as critical was found in Tencent WeKnora 0.1.0/0.2.5. Affected by this issue is some unknown functionality of the component MCP Stdio Configuration Handler. Executing a manipulation can lead to command injection.
This vulnerability is handled as CVE-2026-30861. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.